traynotify.exe

EaseUS Todo Backup

CHENGDU YIWO Tech Development Co., Ltd.

It is set to automatically execute when any user logs into Windows (through the local user run registry setting) with the name ‘EaseUs Tray’.
Publisher:
CHENGDU YIWO Tech Development Co., Ltd  (signed by CHENGDU YIWO Tech Development Co., Ltd.)

Product:
EaseUS Todo Backup

Description:
EaseUS Todo Backup Application

Version:
4, 0, 0, 5

MD5:
60bb80d548ad42c7bd184ba24ea8e2e0

SHA-1:
f83905d8b7b53cb58098256284617af96f08a249

SHA-256:
8c7ea03cc8289048cb486a305321cd0d3775f2943e17d17acdd2ef0a550286e6

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
11/17/2024 9:42:28 AM UTC  (today)

File size:
727.1 KB (744,584 bytes)

Product version:
4.0.0.5

Copyright:
Copyright (C) 2005-2011 CHENGDU YIWO Tech Development Co., Ltd. All rights reserved.

Original file name:
TrayNoti.exe

File type:
Executable application (Win32 EXE)

Language:
English

Common path:
C:\Program Files\easeus\todo backup\bin\traynotify.exe

Digital Signature
Authority:
VeriSign, Inc.

Valid from:
7/14/2011 7:00:00 AM

Valid to:
9/12/2014 6:59:59 AM

Subject:
CN="CHENGDU YIWO Tech Development Co., Ltd.", OU=Digital ID Class 3 - Microsoft Software Validation v2, O="CHENGDU YIWO Tech Development Co., Ltd.", L=Chengdu, S=Sichuan, C=CN

Issuer:
CN=VeriSign Class 3 Code Signing 2010 CA, OU=Terms of use at https://www.verisign.com/rpa (c)10, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
7FAE9E54789D8A5A8607F13D524E7F23

File PE Metadata
Compilation timestamp:
3/15/2012 8:32:20 AM

OS version:
5.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
9.0

Entry address:
0x394A4

Entry point:
E8, 5A, 06, 00, 00, E9, 37, FD, FF, FF, FF, 25, 30, E3, 43, 00, FF, 25, 2C, E3, 43, 00, 8B, FF, 55, 8B, EC, F6, 45, 08, 02, 57, 8B, F9, 74, 25, 56, 68, 8A, 9D, 43, 00, 8D, 77, FC, FF, 36, 6A, 0C, 57, E8, EF, 01, 00, 00, F6, 45, 08, 01, 74, 07, 56, E8, 65, F3, FF, FF, 59, 8B, C6, 5E, EB, 14, E8, 98, 08, 00, 00, F6, 45, 08, 01, 74, 07, 57, E8, 4E, F3, FF, FF, 59, 8B, C7, 5F, 5D, C2, 04, 00, 3B, 0D, A8, ED, 44, 00, 75, 02, F3, C3, E9, 84, 06, 00, 00, CC, FF, 25, 20, E3, 43, 00, FF, 25, 18, E3, 43, 00, CC, CC...
 
[+]

Code size:
241.5 KB (247,296 bytes)

Startup File (All Users Run)
Registry location:
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run

Name:
EaseUs Tray

Command:
"C:\Program Files\easeus\todo backup\bin\traynotify.exe"


Scan traynotify.exe - Powered by Reason Core Security